Borrowing it
Nothing to install: this file belongs to wspringer/lilypond-mcp. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/wspringer/lilypond-mcp/main/CLAUDE.mdgit clone --depth 1 https://github.com/wspringer/lilypond-mcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/wspringer/lilypond-mcp/claude-md)<a href="https://agentmods.dev/instructions/wspringer/lilypond-mcp/claude-md"><img src="https://agentmods.dev/badge/instructions/wspringer/lilypond-mcp/claude-md/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/instructions/wspringer/lilypond-mcp/claude-md"><img src="https://agentmods.dev/badge/instructions/wspringer/lilypond-mcp/claude-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00790 | $0.00790 |
| Opus 5 | $0.00395 | $0.00395 |
| Sonnet 5 | $0.00158 | $0.00158 |
| Haiku 4.5 | $0.00079 | $0.00079 |
Grade A, and why
lilypond-mcp CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 67 lines — stays where its author put it; the contents beside it link to each section on GitHub.
lilypond-mcp
MCP server that engraves LilyPond sources into placeable assets (PDF, EPS,
SVG, PNG) with a WebAssembly build of LilyPond, fetched from
lilypond-wasi releases and
pinned in engine.json; an installed LilyPond is never used. See
README.md for the user-facing story and LICENSING.md for why this
repo is MIT around a GPL engine.
Working practices
-
Feature branches + PRs, never direct pushes to
main. Branch protection enforces this; thetestcheck is required. -
Document every user-facing change with a change file (Knope's changesets): run
knope document-change, or write.changeset/<slug>.mdby hand:--- default: minor --- #### One-line summary for the changelog Optional detail paragraphs, written for npm users.Bump types:
major(breaking),minor(feature),patch(fix). Change files are the only source of release semantics ([changes] ignore_conventional_commits = truein knope.toml): commit subjects never bump versions or write changelog entries. A user-facing change without a change file silently ships undocumented — don't. Conventional PR titles (fix:,feat:,ci:) remain as history hygiene, nothing more. A PR that changes nothing for npm users (CI, dev config, comments) gets thenot user facinglabel instead, which skips the bot's check. -
Releases: the Knope bot keeps a release PR open; merging it tags, writes the changelog, and
release.ymlpublishes to npm via trusted publishing (OIDC). Nevernpm publishby hand.
Gotchas that cost real time
node:wasifast calls corrupt memory from Node 22.21.1 (the WasiFunction fast-call signature backport, nodejs/node#59600): the engine segfaults during Guile startup, all platforms, with empty stderr. The worker always runs with--no-turbo-fast-api-calls, which sidesteps it — never remove that flag without re-bisecting. (Node 24 is unaffected either way.)- PRs opened with
GITHUB_TOKEN(e.g. by trail-engine.yml) don't trigger workflows, so required checks never run on them. Nudge with an empty commit pushed by a real user, or set aGH_PATsecret (the workflow already prefers it). - InDesign needs the PDF (fonts subsetted, all boxes stamped) — never hand it LilyPond EPS.
- LilyPond mangles single-component
-Idirs (/incnever resolves,/deep/incdoes — its File_name parser). Every guest include path is two components:/src/dirfor the source's own directory,/include/Nforinclude_dirs.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 67 lines · 790 tokens per session scan A 430e1bac0fdd
lilypond-mcp CLAUDE.md is an instructions file published in the GitHub repository wspringer/lilypond-mcp (0 stars, last pushed today), licensed MIT. It adds 790 tokens to every session, about $0.0040 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
deepseek-harness AGENTS.md
AGENTS.md instructions for deepseek-ai/deepseek-harness, covering agents.md, pre-stable apis and released session data, repository layout, commands and host sandbox failures.